Abstract:
The invention concerns a cryptographic module and method of setting such a module to sign data, the method comprising: creating (22) inside the module a signing identity (SID) with asymmetric key pair; generating (24) inside the module a signing asymmetric key pair (SK USER , PK USER ); using the signing identity key (SK SID ) to generate inside the module a first certificate (PK USER Cert) certifying the signing key; and sending (27b) said first certificate to a certification authority (7), the signing secret key (SK USER ) being for use in computing a signature of data with an asymmetric algorithm.